CVE-1999-0611: Critical severity Microsoft Windows NT vulnerability
A system-critical Windows NT registry key has an inappropriate value.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Identify the system-critical Windows NT registry key that has the inappropriate value and set it to the appropriate/correct value as documented by the vendor or from a known-good configuration. If the correct value is unknown, restore the key from a verified backup.
Windows NT registry system-critical registry key = appropriate/correct value - Operational
After correcting the registry key, verify system functionality and services dependent on the key. Record and audit the change, and retain evidence of the original and corrected values. If available, validate the fix against vendor guidance or a known-good baseline.
Event History
Frequently Asked Questions
What does an attacker need to exploit this issue?
The attack vector is network-based, requires low complexity, and does not require authentication.
What could a successful exploitation allow an attacker to affect?
The listed impact includes complete compromise of confidentiality, integrity, and availability.